awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目MCP 服务器关于排名机制媒体报道
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
google avatar

google/security-research

0
View on GitHub↗
4,362 星标·521 分支·C·apache-2.0·16 次浏览www.google.com/about/appsecurity↗

Security Research

This is a public archive of vulnerability findings, proof-of-concept code, and technical reports detailing security flaws discovered in third-party software. It functions as a coordinated vulnerability disclosure platform, enabling private reporting to vendors and structured publication of advisories after a fix is released or a 90-day deadline passes.

The repository provides modular security analysis tooling—standalone scripts and binaries each targeting a specific bug class for automated detection—alongside a cross-platform fuzzing framework that runs tests across multiple operating systems and architectures. It also maintains a threat intelligence archive that aggregates bug pattern data and exploit characteristics for longitudinal security trend analysis.

The collection is organized through a structured advisory portal with metadata for severity, affected versions, and patch status, and includes executable exploit code alongside advisory documents for reproducible vulnerability verification. The documentation and install surface is oriented toward security researchers and vendors participating in coordinated disclosure workflows.

Features

  • Coordinated Vulnerability Disclosures - A system for privately disclosing vulnerabilities to vendors and publishing details after a fix is released or a deadline passes.
  • Vulnerability Research - A public archive of security findings, proof-of-concept code, and technical reports detailing vulnerabilities in third-party software.
  • Security Advisories - A structured collection of vulnerability reports used to inform the public and coordinate patches with vendors.
  • Proof-of-Concept Advisories - Publish detailed security notices with proof-of-concept code for vulnerabilities found in third-party software.
  • Structured Advisory Portals - Organises vulnerability reports with metadata fields for severity, affected versions, and patch status.
  • Security Research Repositories - Maintaining a public archive of vulnerability findings, technical reports, and exploit data for threat intelligence and software bug pattern analysis.
  • Bug Class Detection Tools - Using modular scripts and binaries to automate the detection of specific classes of software vulnerabilities across platforms.
  • Exploit Proof-of-Concept Indexes - Stores executable exploit code alongside advisory documents for reproducible vulnerability verification.
  • Cross-Platform Fuzzers - Applying fuzzing techniques across multiple operating systems to discover software bugs and security weaknesses.
  • Cross-Platform - Runs fuzz tests across multiple operating systems and architectures to uncover software defects.
  • Third Party Dependency Risk Assessment - Assessing and documenting vulnerabilities in third-party software to help organizations manage supply chain security risks.
  • Threat Intelligence Aggregation - Aggregates bug pattern data and exploit characteristics for longitudinal security trend analysis.
  • Bug Pattern Archives - Collecting data on software bug patterns and exploit characteristics for longitudinal security trend analysis.
  • Exploit Research - Repository for security research and vulnerability analysis.
  • System Programming Foundations - Collection of security research and educational materials.
  • Security Research and Advisories - Security research advisories and vulnerability disclosures.
  • Exploit Proofs and PoCs - Security advisories and proof-of-concepts for non-Google code.
  • Kernel Vulnerability Research - Repository for vulnerability reports and security research findings.
  • Protection Bypasses - Security research findings and bypass techniques for kernel protections.

Star 历史

google/security-research 的 Star 历史图表google/security-research 的 Star 历史图表

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Start searching with AI

Security Research 的开源替代方案

相似的开源项目,按与 Security Research 的功能重合度排序。
  • peiqi0/peiqi-wiki-bookPeiQi0 的头像

    PeiQi0/PeiQi-WIKI-Book

    4,111在 GitHub 上查看↗

    PeiQi-WIKI-Book is a cybersecurity knowledge base and security research wiki. It functions as a markdown static site generator that converts structured text files into a set of interconnected HTML pages. This system serves as a curated collection of technical documentation and guides focused on vulnerability research, code auditing, and penetration testing. The project utilizes a git-driven documentation workflow, using version control hooks to automatically update a live website when content changes. It features a client-side searchable index that allows users to find security topics without

    在 GitHub 上查看↗4,111
  • vxunderground/vxug-papersvxunderground 的头像

    vxunderground/VXUG-Papers

    1,393在 GitHub 上查看↗

    This project is a centralized repository and research database dedicated to the collection of technical documentation and source code concerning offensive security, malware development, and system exploitation. It serves as an archive for security professionals and researchers to study threat actor methodologies and historical security research. The repository functions as a static, version-controlled archive that organizes research papers and code samples into a flat-file directory structure. This approach ensures long-term availability and offline access to the materials, while a decentrali

    Cmalwaremalware-developmentmalware-research
    在 GitHub 上查看↗1,393
  • alexandreborges/malwoverviewalexandreborges 的头像

    alexandreborges/malwoverview

    3,882在 GitHub 上查看↗

    This project is a Python command-line security tool and malware analysis framework designed for threat intelligence aggregation and incident triage. It functions as an aggregator that orchestrates queries across multiple security services and sandboxes to analyze hashes, IP addresses, and domains. The tool distinguishes itself by incorporating an intelligence layer that uses language models to provide automated risk assessments and framework mappings. It also includes specialized capabilities for extracting indicators of compromise from unstructured text, documents, and web pages, as well as

    Pythonalienvaultcvecve-search
    在 GitHub 上查看↗3,882
  • swisskyrepo/payloadsallthethingsswisskyrepo 的头像

    swisskyrepo/PayloadsAllTheThings

    78,434在 GitHub 上查看↗

    This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers. It functions as a centralized repository of offensive security techniques, providing a structured collection of exploit payloads, attack vectors, and methodologies for conducting vulnerability assessments and penetration testing. The repository distinguishes itself through a cross-platform payload taxonomy that categorizes exploitation methods by vulnerability type and target environment, enabling rapid lookup during security assessments. It maintains high standards of data i

    Pythonbountybugbountybypass
    在 GitHub 上查看↗78,434
查看 Security Research 的所有 30 个替代方案→

常见问题解答

google/security-research 是做什么的?

This is a public archive of vulnerability findings, proof-of-concept code, and technical reports detailing security flaws discovered in third-party software. It functions as a coordinated vulnerability disclosure platform, enabling private reporting to vendors and structured publication of advisories after a fix is released or a 90-day deadline passes.

google/security-research 的主要功能有哪些?

google/security-research 的主要功能包括:Coordinated Vulnerability Disclosures, Vulnerability Research, Security Advisories, Proof-of-Concept Advisories, Structured Advisory Portals, Security Research Repositories, Bug Class Detection Tools, Exploit Proof-of-Concept Indexes。

google/security-research 有哪些开源替代品?

google/security-research 的开源替代品包括: peiqi0/peiqi-wiki-book — PeiQi-WIKI-Book is a cybersecurity knowledge base and security research wiki. It functions as a markdown static site… vxunderground/vxug-papers — This project is a centralized repository and research database dedicated to the collection of technical documentation… alexandreborges/malwoverview — This project is a Python command-line security tool and malware analysis framework designed for threat intelligence… usestrix/strix — Strix is an automated security research and vulnerability scanning platform that leverages language models to… swisskyrepo/payloadsallthethings — This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers.… edgesecurityteam/ehole — EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability…